logoalt Hacker News

pclmulqdq12/09/20247 repliesview on HN

1024 is for RSA-1024, which is believed to be broken by classical means at this point. Everyone doing anything with RSA is on 4k or larger.


Replies

tptacek12/09/2024

2048. There is no plausible conventional attack on 2048; whatever breaks 2048 is probably going to break 4096, as I understand it.

https://crypto.stackexchange.com/questions/1978/how-big-an-r...

wcoenen12/09/2024

> Everyone doing anything with RSA is on 4k or larger.

The Let's Encrypt intermediate certificates R10 and R11 seem to be only 2048 bit.

show 1 reply
Vecr12/09/2024

They are? The short term recommendation is 3072, and I still see lots of 2048. Actually, it's mostly 2048.

rob-olmos12/10/2024

Reminder to anyone if DKIM keys haven't been rotated in a while they might still be 1024. Eg., Google Workspace but new keys are 2048 now.

adastra2212/09/2024

I took this conversation to be about ECC, not RSA.

show 2 replies
FredF---12/10/2024

Is it broken? Seems still no one solved RSA-1024 challenge.

show 1 reply